CVE-2026-16480

IBM Db2 11.5.0 through 11.5.9, and 12.1.0 through 12.1.5 is affected by an improper authorization vulnerability in the certain command, allowing a non-privileged user to bypass authority checks and modify database catalog data.
References
Link Resource
https://www.ibm.com/support/pages/node/7282951 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:db2:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:db2:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-08-12 21:17

Updated : 2026-08-18 18:59


NVD link : CVE-2026-16480

Mitre link : CVE-2026-16480

CVE.ORG link : CVE-2026-16480


JSON object : View

Products Affected

ibm

  • db2
CWE
CWE-602

Client-Side Enforcement of Server-Side Security